Filling in the Knowledge Gaps

How Cinchy accomplished ISO 27001 and SOC 2 attestations with Laika
About Cinchy
Cinchy builds data-centric solutions that make integration obsolete. By fundamentally changing the way data works, Cinchy eliminates countless copies of data and restores data access control. The team accelerates the delivery of new technology projects for global businesses, saving millions in development costs while addressing the root causes of data fragmentation and insecurity.
Compliance Architect
Shawn Studholme
Industry:
Information Technology & Services
Company Size:
Small Business (25-50 employees)
Location:
Toronto, Ontario
Report:
ISO 27001, SOC 2 Type 2

 Problem

Rather than transferring or copying data in order to share it, or even worse so, creating data silos, Cinchy’s data fabric platform allows businesses to collaborate in real-time, sharing controlled access to original sources. Ultimately, they empower businesses to take control of their data.

As we went up-market and scaled, we started getting more diligence. Some firms wanted info-sec policies that we already had in place, but as we started to scale, all 500+ top firms had tough security assessments.

Saskia Bec

Information Security Analyst at Cinchy

With data at the heart, Cinchy needed a dedicated security team to help promote a new era of collaboration and data exchange among devices, applications, and people. 

Solution

When searching for a solution, Cinchy leveraged Laika’s compliance experts to achieve an ISO 27001 certification and further extend their security posture through a SOC 2 report. 

We needed a team that would help us get our reports, choose an auditor, and get us through the audit process. When we first started looking, we looked at who would help us get our reports in the most time-efficient way possible while still ensuring quality work. Without Laika, achieving these reports definitely would’ve been harder.

Saskia Bec

Information Security Analyst at Cinchy

Compliance Architects

Laika’s compliance experts conducted gap, risk, and readiness assessments and crafted a tailored task list to achieve ace ISO 27001 and SOC 2 compliance. The team powered through audit while Laika fielded customer security questions. 

That extra piece of advice, guidance, and communication throughout the entire process was beneficial. Laika’s compliance architects helped us so much, especially during the audit process. From our side, we had never gone through an audit before; so having someone to field any questions the auditor had was really helpful.

Saskia Bec

Information Security Analyst at Cinchy

Laika’s team was also able to complete the initial internal audit required for ISO 27001, preventing Cinchy from hiring an additional outside resource.  

Playbooks

Cinchy used Laika Playbooks to move through ISO 27001, followed by SOC 2 Type 2. Playbooks guided Cinchy through a step-by-step tasks list and helped implement all the best practices. Because ISO 27001 and SOC 2 overlap, Laika’s Playbooks automatically applied ISO 27001 controls to SOC 2, cutting down 75% of the time required to implement both. 

The Playbooks tab was a really clear way of seeing all our big objectives and tasks. It helped me understand the bigger picture and what exact documents we needed to upload as evidence. That was a really helpful piece of Laika.

Saskia Bec

Information Security Analyst at Cinchy

 Results

Cinchy’s ISO 27001 audit process was completed in four weeks while their SOC 2 audit lasted two weeks. While the audits were the latest milestone in their compliance roadmap, Cinchy’s promise to ensure security doesn’t stop there. Their dedication to maintain a secure compliance posture and scale it as they grow reflects their commitment to empowering data independence. 

For the past month, we’ve told our customers we’re in the process of getting our SOC 2 and ISO 27001. Having the reports in our hands alleviates any concern from our customers.

Saskia Bec

Information Security Analyst at Cinchy

Ready to start your compliance journey? Team up with Laika to get it right. 

Input from the Expert

Amalia Simpson

Customer Success Manager

Congratulations to the Cinchy team for receiving their SOC 2 and ISO 27001 report! Cinchy's core values of data centricity and autonomous data translates directly into their commitment to keeping their customers' information safe and secure. The teams' dedication to going above and beyond is a testament to the accountability, responsibility, and integrity of their business operations. I look forward to working with them closely in the future.

Enterprise-ready compliance that never slows you down

Request a Demo

Sign up for our newsletter